Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
AZ-104
Microsoft Azure
Administrator Exam
Version: Demo
Web: www.dumpspedia.com
Email: support@dumpspedia.com
IMPORTANT NOTICE
Feedback
We have developed quality product and state-of-art service to ensure our customers interest. If you have any
suggestions, please feel free to contact us at feedback@dumpspedia.com
Support
If you have any questions about our product, please provide the following items:
exam code
screenshot of the question
login id/email
please contact us at support@dumpspedia.com and our technical experts will provide support within 24 hours.
Copyright
The product of each order has its own encryption code, so you should use it independently. Any unauthorized
changes will inflict legal punishment. We reserve the right of final explanation for this statement.
Braindumps Questions Microsoft - AZ-104
Overview
Existing Environment
Huongous Insurance is an insurance company that has three offices in Miami, Tokoyo, and Bankok. Each has
5000 users.
Humongous Insurance has a single-domain Active Directory forest named humongousinsurance.com. The
functional level of the forest is Windows Server 2012.
Network Infrastructure
Each office has a local data center that contains all the servers for that office. Each office has a dedicated
connection to the Internet.
Each office has several link load balancers that provide access to the servers.
You suspect that some of the characters are unsupported in Azure AD.
Licensing Issue
You attempt to assign a license in Azure to several users and receive the following error message: "Licenses
not assigned. License agreement failed for one user."
You verify that the Azure subscription has the available licenses.
Requirements
Planned Changes
Humongous Insurance plans to open a new office in Paris. The Paris office will contain 1,000 users who will
be hired during the next 12 months. All the resources used by the Paris office users will be hosted in Azure.
All client computers in the Paris office will be joined to an Azure AD domain.
You plan to create the following networking resources in a resource group named All_Resources:
Default Azure system routes that will be the only routes used to route traffic
A virtual network named Paris-VNet that will contain two subnets named Subnet1 and Subnet2
A virtual network named ClientResources-VNet that will contain one subnet named ClientSubnet
A virtual network named AllOffices-VNet that will contain two subnets named Subnet3 and Subnet4
You plan to enable peering between Paris-VNet and AllOffices-VNet. You will enable the Use remote
gateways setting for the Paris-VNet peerings.
You plan to create a private DNS zone named humongousinsurance.local and set the registration network to
the ClientResources-VNet virtual network.
Each subnet will contain several virtual machines that will run either Windows Server 2012 R2, Windows
Server 2016, or Red Hat Linux.
Department Requirements
Humongous Insurance identifies the following requirements for the company's departments:
Web administrators will deploy Azure web apps for the marketing department. Each web app will be
added to a separate resource group. The initial configuration of the web apps will be identical. The web
administrators have permission to deploy web apps to resource groups.
During the testing phase, auditors in the finance department must be able to review all Azure costs from
the past week.
Authentication Requirements
Users in the Miami office must use Azure Active Directory Seamless Single Sign-on (Azure AD Seamless
SSO) when accessing resources in Azure.
You need to resolve the licensing issue before you attempt to assign the license again.
A. From the Groups blade, invite the user accounts to a new group.
Answer: B
Explanation
Scenario: Licensing Issue
1. You attempt to assign a license in Azure to several users and receive the following error message: "Licenses
not assigned. License agreement failed for one user."
2. You verify that the Azure subscription has the available licenses.
Solution:
Some Microsoft services aren't available in all locations because of local laws and regulations. Before you can
assign a license to a user, you must specify the Usage location property for the user. You can specify the
location under the User > Profile > Settings section in the Azure portal.
Reference:
https://docs.microsoft.com/en-us/azure/active-directory/users-groups-roles/licensing-groups-resolve-problems
A. From Active Directory Users and Computers, select the user accounts, and then modify the User
Principal Name value.
C. From Active Directory Domains and Trusts, modify the list of UPN suffixes.
Answer: B
Explanation
IdFix is used to perform discovery and remediation of identity objects and their attributes in an on-premises
Active Directory environment in preparation for migration to Azure Active Directory. IdFix is intended for the
Active Directory administrators responsible for directory synchronization with Azure Active Directory.
You suspect that some of the characters are unsupported in Azure AD.
References: https://www.microsoft.com/en-us/download/details.aspx?id=36832
Your network contains an Active Directory domain. The domain contains a user named User1. The domain is
synced to Azure Active Directory (Azure AD) as shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information
presented in the graphic NOTE: Each correct selection is worth one point.
Answer:
Explanation
The Active Directory domain service stores passwords in the form of a hash value representation, of the actual
user password.
The Active Directory domain service stores passwords in the form of a hash value representation, of the actual
user password.
To synchronize your password, Azure AD Connect sync extracts your password hash from the on-premises
Active Directory instance.
References:
https://docs.microsoft.com/en-us/azure/active-directory/hybrid/how-to-connect-password-hash-synchronization
You have an Azure subscription that contains the resources shown in the following table.
Solution: You create a new network interface, and then you add the network interface to VM1.
A. Yes
B. No
Answer: B
Explanation
Instead you should delete VM1. You recreate VM1, and then you add the network interface for VM1.
Note: When you create an Azure virtual machine (VM), you must create a virtual network (VNet) or use an
existing VNet. You can change the subnet a VM is connected to after it's created, but you cannot change the
VNet.
References:
https://docs.microsoft.com/en-us/azure/virtual-machines/windows/network-overview
Overview
Litware, Ltd. is a consulting company that has a main office in Montreal and two branch offices in Seattle and
New York.
The Montreal office has 2,000 employees. The Seattle office has 1,000 employees. The New York office has
200 employees.
Litware creates a new Azure subscription. The Azure Active Directory (Azure AD) tenant uses a domain
named Litware.onmicrosoft.com. The tenant uses the P1 pricing tier.
Existing Environment
The network contains an Active Directory forest named Litware.com. All domain controllers are configured as
DNS servers and host the Litware.com DNS zone.
Litware has finance, human resources, sales, research, and information technology departments. Each
department has an organizational unit (OU) that contains all the accounts of that respective department. All the
user accounts have the department attribute set to their respective department. New users are added frequently.
Litware has data centers in the Montreal and Seattle offices. Each data center has a firewall that can be
configured as a VPN device.
All infrastructure servers are virtualized. The virtualization environment contains the servers in the following
table.
Litware uses two web applications named App1 and App2. Each instance on each web application requires
1GB of memory.
The network security team implements several network security groups (NSGs).
Planned Changes
• Migrate App1 and App2 to two Azure web apps named webApp1 and WebApp2.
Technical requirements
• Ensure that WebApp1 can adjust the number of instances automatically based on the load and can scale up to
five instance*.
• Ensure that VM3 can establish outbound connections over TCP port 8080 to the applications servers in the
Montreal office.
• Ensure that routing information is exchanged automatically between Azure and the routers in the Montreal
office.
• Enable Azure Multi-Factor Authentication (MFA) for the users in the finance department only.
• Connect the New Your office to VNet1 over the Internet by using an encrypted connection.
• Create a workflow to send an email message when the settings of VM4 are modified.
• Create a custom Azure role named Role1 that is based on the Reader role.
Answer: B
Explanation
Scenario: Create a workflow to send an email message when the settings of VM4 are modified.
You can start an automated logic app workflow when specific events happen in Azure resources or third-party
resources. These resources can publish those events to an Azure event grid. In turn, the event grid pushes those
events to subscribers that have queues, webhooks, or event hubs as endpoints. As a subscriber, your logic app
can wait for those events from the event grid before running automated workflows to perform tasks - without
you writing any code.
References:
https://docs.microsoft.com/en-us/azure/event-grid/monitor-virtual-machine-changes-event-grid-logic-app
You need to the appropriate sizes for the Azure virtual for Server2.
What should you do? To answer, select the appropriate options in the answer area.
Answer:
Explanation
Azure Site Recovery can be used to manage migration of on-premises machines to Azure.
Scenario: Migrate the virtual machines hosted on Server1 and Server2 to Azure.
References:
https://docs.microsoft.com/en-us/azure/site-recovery/migrate-tutorial-on-premises-azure
Overview
Contoso, Ltd. is a manufacturing company that has offices worldwide. Contoso works with partner
organizations to bring products to market.
Contoso products are manufactured by using blueprint files that the company authors and maintains.
Existing Environment
Currently, Contoso uses multiple types of servers for business operations, including the following:
File servers
Domain controllers
Your network contains an Active Directory forest named contoso.com. All servers and client computers are
joined to Active Directory.
You have a public-facing application named App1. App1 is comprised of the following three tiers:
A SQL database
Each tier is comprised of five virtual machines. Users access the web front end by using HTTPS only.
Requirements
Planned Changes
Create a hybrid directory to support an upcoming Microsoft Office 365 migration project.
Technical Requirements
Ensure that all the virtual machines for App1 are protected by backups.
Ensure that the blueprint files are stored in the archive storage tier.
Ensure that partner access to the blueprint files is secured and temporary.
Use unmanaged standard storage for the hard disks of the virtual machines.
Ensure that when users join devices to Azure Active Directory (Azure AD), the users use a mobile
phone to verify their identity.
User Requirements
Ensure that only users who are part of a group named Pilot can join devices to Azure AD.
Designate a new user named Admin1 as the service administrator of the Azure subscription.
Ensure that a new user named User3 can create network objects for the Azure subscription.
You need to configure the Device settings to meet the technical requirements and the user requirements.
Which two settings should you modify? To answer, select the appropriate settings in the answer area.
Answer:
Explanation
Box 1: Selected
Box 2: Yes
From scenario:
Ensure that only users who are part of a group named Pilot can join devices to Azure AD
Ensure that when users join devices to Azure Active Directory (Azure AD), the users use a mobile
phone to verify their identity.
You need to recommend a solution for App1. The solution must meet the technical requirements. What should
you include in the recommendation? To answer, select the appropriate options in the answer area.
Answer:
Explanation
This reference architecture shows how to deploy VMs and a virtual network configured for an N-tier
application, using SQL Server on Windows for the data tier.
Scenario: You have a public-facing application named App1. App1 is comprised of the following three tiers:
A SQL database
Each tier is comprised of five virtual machines. Users access the web front end by using HTTPS only.
References: https://docs.microsoft.com/en-us/azure/architecture/reference-architectures/n-tier/n-tier-sql-server
You have an Azure subscription that contains an Azure Availability Set named WEBPROD-AS-USE2 as
shown in the following exhibit.
Use the drop-down menus to select the answer choice that completes each statement based on the information
presented in the graphic.
Answer:
Explanation
Box 1: 2
There are 10 update domains. The 14 VMs are shared across the 10 update domains so four update domains
will have two VMs and six update domains will have one VM. Only one update domain is rebooted at a time.
Box 2: 7
There are 2 fault domains. The 14 VMs are shared across the 2 fault domains, so 7 VMs in each fault domain.
A rack failure will affect one fault domain so 7 VMs will be offline.
Reference:
https://docs.microsoft.com/en-us/azure/virtual-machines/windows/manage-availability
You have an azure subscription named Subscription that contains the resource groups shown in the following
table.
In RG1, you create a virtual machine named VM1 in the East Asia location.
What are two possible ways to achieve this goal? Each correct answer presents a complete a solution.
A. Create VNET1 in RG2, and then set East Asia as the location.
B. Create VNET1 in a new resource group in the West US location, and then set West US as the location.
C.
C. Create VNET1 in RG1, and then set East Asia as the location
Answer: A C
Explanation
A network interface can exist in the same, or different resource group, than the virtual machine you attach it
to, or the virtual network you connect it to.
The virtual machine you attach a network interface to and the virtual network you connect it to must exist in
the same location, also referred to as a region.
Note, Resource groups can span multiple Regions, but VNets only can hold resources (VMs, Network
Adapters) that exists in the same region.
So in this scenario, you need to create VNET1 in any RG and set location as East Asia.
Reference:
https://docs.microsoft.com/en-us/azure/virtual-network/virtual-network-network-interface
We help you pass any IT / Business Certification Exams with 100% Pass Guaranteed or Full Refund. Especially
Cisco, CompTIA, Citrix, EMC, HP, Oracle, VMware, Juniper, Check Point, LPI, Nortel, EXIN and so on.
We prepare state-of-the art practice tests for certification exams. You can reach us at any of the email addresses listed
below.
Sales: sales@dumpspedia.com
Feedback: feedback@dumpspedia.com
Support: support@dumpspedia.com
Any problems about IT certification or our products, You can write us back and we will get back to you within 24
hours.